A week in security (June 26 - July 2)
04
Jul
2023

A week in security (June 26 – July 2)

Last week on Malwarebytes Labs: A proxyjacking campaign is looking for vulnerable SSH servers New technique can defeat voice authentication…

[tl;dr sec] #188 - Security Interview Questions, Secret Scanning Tools, PentestGPT
04
Jul
2023

[tl;dr sec] #188 – Security Interview Questions, Secret Scanning Tools, PentestGPT

I hope you’ve been doing well! The “Full Utah” Experience Last weekend I got to hang out with my friend…

Of sharks, surveillance, and spied on emails
04
Jul
2023

Of sharks, surveillance, and spied on emails

This week on Lock and Code, we speak with Matthew Guargilia about the NSA’s broad powers to sweep up Americans’…

Cache Me If You Can: Messing with Web Caching
03
Jul
2023

Cache Me If You Can: Messing with Web Caching

In this talk, Louis covers 3 web cache related attacks: cache deception, edge side includes, and cache poisoning. Note: this…

Anonymous Sudan claims to have stolen 30 million Microsoft's customer accountsSecurity Affairs
03
Jul
2023

Anonymous Sudan claims to have stolen 30 million Microsoft’s customer accountsSecurity Affairs

Microsoft denied the data breach after the collective of hacktivists known as Anonymous Sudan claimed to have hacked the company….

Police Bust International Phone Scam Gang Targeting Elderly
03
Jul
2023

Police Bust International Phone Scam Gang Targeting Elderly

The alleged ringleader of the phone scam gang, which preyed on elderly individuals through fraudulent phone calls, has also been…

Chinese APT uses HTML smuggling to target European Ministries and embassiesSecurity Affairs
03
Jul
2023

Chinese APT uses HTML smuggling to target European Ministries and embassiesSecurity Affairs

China-linked APT group was spotted using HTML smuggling in attacks aimed at Foreign Affairs ministries and embassies in Europe. A…

Microsoft denies data breach, theft of 30 million customer accounts
03
Jul
2023

Microsoft denies data breach, theft of 30 million customer accounts

Microsoft has denied the claims of the so-called hacktivists “Anonymous Sudan” that they breached the company’s servers and stole credentials…

New Meduza Malware Targets Wallets, Passwords and Browsers on Windows
03
Jul
2023

New Meduza Malware Targets Wallets, Passwords and Browsers on Windows

Meduza authors are pushing the malware as a subscription-based service, offering plans for 1-month, 3-month, and lifetime access. Crimeware-as-a-Service (CaaS)…

What is post-quantum cryptography and why is it important?
03
Jul
2023

What is post-quantum cryptography and why is it important?

[ This article was originally published here ] Whether you work in the tech field or not, it’s likely that…

Patch Diffing CVE-2023-28121 to Compromise a WooCommerce – RCE Security
03
Jul
2023

Patch Diffing CVE-2023-28121 to Compromise a WooCommerce – RCE Security

Back in March 2023, I noticed an interesting security advisory that was published by Wordfence about a critical “Authentication Bypass…

Hackers target European government entities in SmugX campaign
03
Jul
2023

Hackers target European government entities in SmugX campaign

A phishing campaign that security researchers named SmugX and attributed to a Chinese threat actor has been targeting embassies and…